dotProject Unspecified Data Handling Client-Side Cross Site Scripting Vulnerability
Description
A vulnerability has been identified in dotProject, which could be exploited by attackers to execute arbitrary scripting code. This issue is caused by unspecified input validation errors when processing user-supplied data, which could be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser in the security context of an affected Web site.
Vulnerable Products
Vulnerable Software: dotProject versions prior to 2.1 RC2